Malware

Malware.AI.3181304140 removal instruction

Malware Removal

The Malware.AI.3181304140 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3181304140 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • Uses Windows utilities for basic functionality
  • Behavioural detection: Injection (inter-process)
  • Harvests cookies for information gathering

How to determine Malware.AI.3181304140?


File Info:

name: E409D9461543D38A2DDA.mlw
path: /opt/CAPEv2/storage/binaries/a846fee1fd7ffd4e5926b4e82d027beef602f042bff345b0f3c27edf9c22aa43
crc32: 3ADC6C7D
md5: e409d9461543d38a2dda3ff26a4a91b2
sha1: 6c7130a19c08289a3e3e9aefd8a3e1a06e502e7e
sha256: a846fee1fd7ffd4e5926b4e82d027beef602f042bff345b0f3c27edf9c22aa43
sha512: aa9e8c65e9f18e3f7e99367f4952b79b1dc61f86ce6d9badacdb158cde3c4183672003309990145c2b5b0324eb2de74153f5976b9423368048f30ee925a37a2a
ssdeep: 6144:iKAFwOu2CBtvvQ93MeDm6fLUqn8BMP+AA6kG:aCBtv+Meq6fYqn8BMWAAY
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T103345B117BE0C432C2A335330866877976AABD315B3587CB77943B3E9E306D25A3935A
sha3_384: 352418b94f6322b1dbed3067e9430ddfee8fe2ff1fc5b5457473f4799decc3eacbd99ce4b245c3555124b1c3cd73c290
ep_bytes: e84e370000e979feffff8bff558bec56
timestamp: 2011-05-13 08:45:55

Version Info:

FileVersion: 1, 0, 0, 0
ProductVersion: 1, 0, 0, 0
ProductName: VTN
LegalCopyright: Copyright (C) 2013
FileDescription:
Translation: 0x0009 0x0001

Malware.AI.3181304140 also known as:

LionicTrojan.Multi.Generic.4!c
DrWebWin32.HLLW.Autoruner1.10560
MicroWorld-eScanTrojan.GenericKD.38640206
ALYacTrojan.GenericKD.38640206
CylanceUnsafe
ZillyaTrojan.Jorik.Win32.10884
SangforTrojan.Win32.Agent.Vxwn
K7AntiVirusPassword-Stealer ( 005679ca1 )
K7GWPassword-Stealer ( 005679ca1 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecTrojan.Gen.2
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Agent-342042
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderTrojan.GenericKD.38640206
NANO-AntivirusTrojan.Win32.Dwn.dxvfvq
AvastFileRepMetagen [Trj]
Ad-AwareTrojan.GenericKD.38640206
EmsisoftTrojan.GenericKD.38640206 (B)
ComodoMalware@#2utfh7izkuu7i
VIPRETrojan.GenericKD.38640206
McAfee-GW-EditionArtemis
FireEyeTrojan.GenericKD.38640206
GDataTrojan.GenericKD.38640206
WebrootW32.Malware.Gen
GoogleDetected
KingsoftWin32.Troj.Generic.v.(kcloud)
ArcabitTrojan.Generic.D24D9A4E
ViRobotTrojan.Win32.Downloader.284672.G
MicrosoftTrojan:Win32/Wacatac.B!ml
McAfeeArtemis!E409D9461543
MAXmalware (ai score=85)
VBA32Trojan.Liam
MalwarebytesMalware.AI.3181304140
TrendMicro-HouseCallTROJ_GEN.R002H0CJ222
RisingTrojan.Generic@AI.94 (RDMK:mjCNzkhE1//3fu2Yh+k6ww)
YandexTrojan.Agent!MstG+MorewM
IkarusTrojan.Autoruner
MaxSecureTrojan.Malware.300983.susgen
AVGFileRepMetagen [Trj]
PandaTrj/CI.A

How to remove Malware.AI.3181304140?

Malware.AI.3181304140 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment